CVE-2026-32838

Edimax GS-5008PL firmware version 1.00.54 and prior use cleartext HTTP for the web management interface without implementing TLS or SSL encryption. Attackers on the same network can intercept management traffic to capture administrator credentials and sensitive configuration data.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:edimax:gs-5008pl_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:edimax:gs-5008pl:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-17 22:16

Updated : 2026-03-19 14:08


NVD link : CVE-2026-32838

Mitre link : CVE-2026-32838

CVE.ORG link : CVE-2026-32838


JSON object : View

Products Affected

edimax

  • gs-5008pl
  • gs-5008pl_firmware
CWE
CWE-319

Cleartext Transmission of Sensitive Information